Category: Articles

Is It Enough to Take a Risk-Based Approach to Internal Audit?

GUEST BLOG POST When I became a chief audit executive (CAE) for the first time in 1990, I determined that a risk-based internal audit approach was not sufficient. A risk-based approach focuses on how well management can handle a potentially bad event or situation. It assesses the design and operation Read More

IIA Calls for More Uniform Disclosure on Climate Change

Supporting greater attention on the important issue of sustainability, The Institute of Internal Auditors (IIA) delivered a message to U.S. Securities and Exchange Commission Chair Gary Gensler last week, encouraging uniform climate disclosure by corporations and recognition of the role internal audit plays in providing assurance around complete, accurate, and Read More

deduping data

Three Steps for Better Compliance with ISO 27001 on InfoSec

The recent hack of the Colonial Pipeline, which has crippled the transmission of fuel in the Southeast United States, serves as a stark and alarming reminder to all businesses of the vulnerability of information systems to security breaches, hacks, and ransomware attacks. Over the last several years, most businesses have Read More

SEC Charges Under Armour with Disclosure Failures

The Securities and Exchange Commission has charged sports apparel manufacturer Under Armour Inc. with misleading investors as to the bases of its revenue growth and failing to disclose known uncertainties concerning its future revenue prospects. Under Armour has agreed to pay $9 million to settle the action. According to the Read More

May is internal audit awareness month

Internal Auditors Are Agents of Trust: Spread the Word this May

GUEST BLOG May is International Internal Audit Awareness Month. Each year, the internal audit community supports efforts to spread the word about the great work that internal auditors do at their companies, public entities, and organizations. The aim is to promote the profession, dispel misconceptions, and remind everyone of the Read More

Vendor Diagram: Components of an Effective Vendor Risk Management Framework

Soon after NASA launched the Hubble Space Telescope into Earth’s orbit in 1990, scientists discovered, to their dismay, that the telescope’s primary mirror was flawed. The mirror, built to exacting specifications by an outside contractor, was ground 1/450 millimeters too flat, drastically reducing Hubble’s usefulness and the quality of its Read More

Office fraud image

Internal Audit’s To-Do List for Fighting Fraud

As the third line within the “Three Lines of Defense” governance model, internal audit must provide assurance over the effectiveness and efficiency of operations, reliability of financial reporting, and compliance with applicable laws and regulations. Yet internal audit’s obligations don’t end there. The third-line responsibility also includes the mission to Read More